Smok3d

Member
  • Content Count

    4
  • Joined

  • Last visited

Community Reputation

0 Neutral

About Smok3d

  • Rank
    New Member
  1. Did you let Kaspersky know that the decryptor did not work? Are they going to help you more?
  2. Ruben-e on bleeping Computer forum posted and had the same extension as I did (830s7). The decryptor worked for him but not me? Wouldn't the same extension be apart of the same campaign?
  3. @Cesar1986 Not as of yet. I am told this is a variant of the Crypton ransomware, some are referring to it as cry36 for the 36 byte file size difference. Still awaiting news on decryption tool.
  4. Hi, I am trying to figure out what encryption this ransomware is using...... ID Ransomware says it is a dharma variant I cannot get either decryter to work. Thought it may be an Amnesia variant but that does not work either. Has the 830s7 extension. Ransom note: See what you can find out about this virus ... * ALL YOUR WORK AND PERSONAL FILES HAVE BEEN ENCRYPTED * To decrypt your files you need to buy the special software – «Nemesis decryptor» You can find out the details / buy decryptor + key / ask questions by email: [email protected] Any help would be much appreciated. EDIT: I am told it is CryptON variant but the decrypter gives error with file pair. Cheers